On Tuesday 05 September 2006 17:35, Andrew D. Fant wrote: > I know that there is an NIS emulation mode for ldap, but is there a more > elegant way to have a local password file, where logins are checked first > against the directory, and if there is no ldap entry for the user, falling > back to the local files?
In /etc/nsswitch.conf, you can have an entry like this : passwd: ldap files shadow: ldap files group: ldap files An for the accounts, in the configuration of PAM, you can have : auth sufficient pam_ldap.so auth sufficient pam_unix.so likeauth nullok use_first_pass This should do what you want... I hope it will help you ! -- Nicolas MASSÉ Pour récupérer ma clef GPG: gpg --keyserver wwwkeys.eu.pgp.net --recv-keys 0x2A18C433 Key fingerprint: 6621 FC23 5DC7 54BA B952 316A 50B1 BC3F 2A18 C433
pgpfpdPJyMRA9.pgp
Description: PGP signature
